Security researchers at Proofpoint have warned against a new cybercriminal, temporarily named BattleRoyal, who is using a variety of delivery methods, including emails, Skype, and fake updates, to exploit a vulnerability in Windows SmartScreen. It was discovered that BattleRoyal had found and exploited this vulnerability before Microsoft publicly disclosed it.
CISA Adds Apache, Microsoft Bugs to Know Exploited Vulnerabilities Database
The U.S. CISA updated its Known Exploited Vulnerabilities (KEV) Catalog, highlighting several critical vulnerabilities including Apache OFBiz (CVE-2024-45195), Microsoft .NET Framework (CVE-2024-29059), and Paessler PRTG